A Framework for Evaluating Client Privacy Leakages in Federated Learning

被引:42
|
作者
Wei, Wenqi [1 ]
Liu, Ling [1 ]
Loper, Margaret [1 ]
Chow, Ka-Ho [1 ]
Gursoy, Mehmet Emre [1 ]
Truex, Stacey [1 ]
Wu, Yanzhao [1 ]
机构
[1] Georgia Inst Technol, Atlanta, GA 30332 USA
来源
关键词
Privacy leakage attacks; Federated learning; Attack evaluation framework;
D O I
10.1007/978-3-030-58951-6_27
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Federated learning (FL) is an emerging distributed machine learning framework for collaborative model training with a network of clients (edge devices). FL offers default client privacy by allowing clients to keep their sensitive data on local devices and to only share local training parameter updates with the federated server. However, recent studies have shown that even sharing local parameter updates from a client to the federated server may be susceptible to gradient leakage attacks and intrude the client privacy regarding its training data. In this paper, we present a principled framework for evaluating and comparing different forms of client privacy leakage attacks. We first provide formal and experimental analysis to show how adversaries can reconstruct the private local training data by simply analyzing the shared parameter update from local training (e.g., local gradient or weight update vector). We then analyze how different hyperparameter configurations in federated learning and different settings of the attack algorithm may impact on both attack effectiveness and attack cost. Our framework also measures, evaluates, and analyzes the effectiveness of client privacy leakage attacks under different gradient compression ratios when using communication efficient FL protocols. Our experiments additionally include some preliminary mitigation strategies to highlight the importance of providing a systematic attack evaluation framework towards an in-depth understanding of the various forms of client privacy leakage threats in federated learning and developing theoretical foundations for attack mitigation.
引用
收藏
页码:545 / 566
页数:22
相关论文
共 50 条
  • [1] Confidential Federated Learning for Heterogeneous Platforms against Client-Side Privacy Leakages
    Li, Qiushi
    Zhang, Yan
    [J]. PROCEEDINGS OF THE ACM TURING AWARD CELEBRATION CONFERENCE-CHINA 2024, ACM-TURC 2024, 2024, : 239 - 241
  • [2] User Privacy Leakages from Federated Learning in NILM Applications
    Shi, Yunchuan
    Li, Wei
    Chang, Xiaomin
    Zomaya, Albert Y.
    [J]. BUILDSYS'21: PROCEEDINGS OF THE 2021 ACM INTERNATIONAL CONFERENCE ON SYSTEMS FOR ENERGY-EFFICIENT BUILT ENVIRONMENTS, 2021, : 212 - 213
  • [3] Optimal Obfuscation to Protect Client Privacy in Federated Learning
    Guan, Bo
    Wei, Shuangqing
    Houmansadr, Amir
    Pishro-Nik, Hossein
    Goeckel, Dennis
    [J]. 2024 58TH ANNUAL CONFERENCE ON INFORMATION SCIENCES AND SYSTEMS, CISS, 2024,
  • [4] Evaluating Differential Privacy in Federated Continual Learning
    Ouyang, Junyan
    Han, Rui
    Liu, Chi Harold
    [J]. 2023 IEEE 98TH VEHICULAR TECHNOLOGY CONFERENCE, VTC2023-FALL, 2023,
  • [5] Federated Learning with Personalized Differential Privacy Combining Client Selection
    Xie, Yunting
    Zhang, Lan
    [J]. 2022 8TH INTERNATIONAL CONFERENCE ON BIG DATA COMPUTING AND COMMUNICATIONS, BIGCOM, 2022, : 79 - 87
  • [6] Binary Federated Learning with Client-Level Differential Privacy
    Liu, Lumin
    Zhang, Jun
    Song, Shenghui
    Letaief, Khaled B.
    [J]. IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 3849 - 3854
  • [7] On Safeguarding Privacy and Security in the Framework of Federated Learning
    Ma, Chuan
    Li, Jun
    Ding, Ming
    Yang, Howard H.
    Shu, Feng
    Quek, Tony Q. S.
    Poor, H. Vincent
    [J]. IEEE NETWORK, 2020, 34 (04): : 242 - 248
  • [8] Model compression and privacy preserving framework for federated learning
    Zhu, Xi
    Wang, Junbo
    Chen, Wuhui
    Sato, Kento
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2023, 140 : 376 - 389
  • [9] Exploring Federated Learning: The Framework, Applications, Security & Privacy
    Saha, Ashim
    Ali, Lubaina
    Rahman, Rudrita
    Monir, Md Fahad
    Ahmed, Tarem
    [J]. 2024 IEEE INTERNATIONAL BLACK SEA CONFERENCE ON COMMUNICATIONS AND NETWORKING, BLACKSEACOM 2024, 2024, : 272 - 275
  • [10] FedDCS: Federated Learning Framework based on Dynamic Client Selection
    Zou, Shutong
    Xiao, Mingjun
    Xu, Yin
    An, Baoyi
    Zheng, Jun
    [J]. 2021 IEEE 18TH INTERNATIONAL CONFERENCE ON MOBILE AD HOC AND SMART SYSTEMS (MASS 2021), 2021, : 627 - 632